2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-2488Cross-site scripting (XSS) vulnerability in Web Content Management News System allows remote attackers to inject arbitra...
CVE-2005-2487Unknown vulnerability in Sun McData switches and directors 4300, 4500, 6064, and 6140 before E/OS 6.0.0 may allow attack...
CVE-2005-1761Linux kernel 2.6 and 2.4 on the IA64 architecture allows local users to cause a denial of service (kernel crash) via ptr...
CVE-2005-1272Stack-based buffer overflow in the Backup Agent for Microsoft SQL Server in BrightStor ARCserve Backup Agent for SQL Ser...
CVE-2005-2353run-mozilla.sh in Thunderbird, with debugging enabled, allows local users to create or overwrite arbitrary files via a s...
CVE-2005-2476Cross-site scripting (XSS) vulnerability in lost_passowrd.php in Naxtor Shopping Cart 1.0 allows remote attackers to inj...
CVE-2005-2475Race condition in Unzip 5.52 allows local users to modify permissions of arbitrary files via a hard link attack on a fil...
CVE-2005-2477shop_display_products.php in Naxtor Shopping Cart 1.0 allows remote attackers to obtain sensitive information via a cat_...
CVE-2005-1268Off-by-one error in the mod_ssl Certificate Revocation List (CRL) verification callback in Apache, when configured to us...
CVE-2005-2478SQL injection vulnerability in SilverNews 2.0.3 allows remote attackers to execute arbitrary SQL commands via the user f...
CVE-2005-2471pstopnm in netpbm does not properly use the "-dSAFER" option when calling Ghostscript to convert a PostScript file into ...
CVE-2005-2472Multiple buffer overflows in BusinessMail 4.60.00 allow remote attackers to cause a denial of service (application crash...
CVE-2005-2473Multiple SQL injection vulnerabilities in ChurchInfo allow remote attackers to execute arbitrary SQL commands via the Pe...
CVE-2005-2480Cross-site scripting (XSS) vulnerability in ColdFusion Fusebox 4.1.0 allows remote attackers to inject arbitrary web scr...
CVE-2005-2481ColdFusion Fusebox 4.1.0 allows remote attackers to obtain sensitive information via an invalid fuseaction parameter, wh...
CVE-2005-2359The AES-XCBC-MAC algorithm in IPsec in FreeBSD 5.3 and 5.4, when used for authentication without other encryption, uses ...
CVE-2005-2474ChurchInfo allows remote attackers to execute obtain sensitive information via the PersonID parameter to (1) PersonView....
CVE-2005-1767traps.c in the Linux kernel 2.6.x and 2.4.x executes stack segment faults on an exception stack, which allows local user...
CVE-2005-1854Unknown vulnerability in apt-cacher in Debian 3.1, related to "missing input sanitising," allows remote attackers to exe...
CVE-2005-2479Quick 'n Easy FTP Server 3.0 allows remote attackers to cause a denial of service (application crash or CPU consumption)...
CVE-2005-2456MEDIUM5.5Array index overflow in the xfrm_sk_policy_insert function in xfrm_user.c in Linux kernel 2.6 allows local users to caus...
CVE-2005-2453Cross-site scripting (XSS) vulnerability in NetworkActiv Web Server 1.0, 2.0.0.6, 3.0.1.1, and 3.5.13, and possibly othe...
CVE-2005-2455Greasemonkey before 0.3.5 allows remote web servers to (1) read arbitrary files via a GET request to a file:// URL in th...
CVE-2005-1853gopher.c in the Gopher client 3.0.5 does not properly create temporary files, which allows local users to gain privilege...
CVE-2005-2438Cross-site scripting (XSS) vulnerability in UseBB 0.5.1 and earlier allows remote attackers to inject arbitrary Javascri...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now